外文翻译ASP的开发准则及安全管理.docx

上传人:b****5 文档编号:6718201 上传时间:2023-01-09 格式:DOCX 页数:10 大小:25.75KB
下载 相关 举报
外文翻译ASP的开发准则及安全管理.docx_第1页
第1页 / 共10页
外文翻译ASP的开发准则及安全管理.docx_第2页
第2页 / 共10页
外文翻译ASP的开发准则及安全管理.docx_第3页
第3页 / 共10页
外文翻译ASP的开发准则及安全管理.docx_第4页
第4页 / 共10页
外文翻译ASP的开发准则及安全管理.docx_第5页
第5页 / 共10页
点击查看更多>>
下载资源
资源描述

外文翻译ASP的开发准则及安全管理.docx

《外文翻译ASP的开发准则及安全管理.docx》由会员分享,可在线阅读,更多相关《外文翻译ASP的开发准则及安全管理.docx(10页珍藏版)》请在冰豆网上搜索。

外文翻译ASP的开发准则及安全管理.docx

外文翻译ASP的开发准则及安全管理

附录

外文原文:

Theexploitationcriteriaandsecuritymanagementoftheasp

Exploitationcriteria:

Applicationservershavebeen,orultimatelywillbeusedinWebserver,whichusuallyoperateintheIISASPpagecomputer.ASPistheonlyobjectofyourclient.Itoffersspecializedsystemsandsecurityconsiderations.WhilemanyoftheWebsitesuseASPsimplynotcomponents,butinthisarticlethatASPistheInternetasabridgebetweentheclientandcomponents.ThefollowingASPcomponentsGuidelines(English):

ASPandthedivisionofservicesbetweencomponents

ASPserverinthemostcommonlyusedbuildingfortheclienttouseHTMLorXMLdocuments,sowefocusedontheuseoftheprogram.Thisleadstoacommonproblem,ifASPpageontheserver,thentheyarepartoftheoperationallevel?

Componentsintheworld,theanswerusuallyisnot.AlthoughtheASPserverisinoperation,butmayberelatedtospaceapplicationsinthesameserver,butitcannotmakeitapartofthebusinesslogic.Withuserinterfacedevelopmenttool,orastheopeningofmorebusinesstooperationalprogramswiththecleardistinctionwillbetremendousreturns.

Letuslookatsomeofthemostimportantoperationallevelandthatleveldivisionguidelines:

SeparationoftheUIcodeandbusinesslogic.ThisincludespreparationcoupledwiththeUIcode,suchastheuseofASPcomponentsMTSinternaltargetitwiththebusinesslogiccodeseparation,asinadifferentDLL.

affairwillbeseparatedwiththeASPpage.ServicesASPincertaincasesbeyondcompare,butthecomponentsandmulti-storeyapplicationswillchangethissituation.Componentsshouldnotbedependentontheclientlayertomanagetheiraffairsandbusinesslogicsemantics.

Willbeexpressedcomponents(usesolicitandresponsivecomponents)andWebserveronthesamemachineand/ortenor.IftheuseofASPinternalcomponentsofthetargetobjectsonremotemachines,thenalloftheinternalcomponentswillbeavailableinretailform.ServerclientaccessisCOM+server,whichsignificantlyreducedtheperformanceandsecurityofcomplicated.ThesemarkingswillbelayinCOM+applicationsmarkas"libraryactivated".

ASPexistinserver,ASPpagesmustbeconsistentwithresourcesharingrules,andremembertoflexibility.Lookatthefollowingdetails:

Inthe"conversation",managementshouldavoiduserspecificstate.KeepASPstatelessandwherepossibletoallowresourcespool.

Modeoperation:

Inevaluatingwhetheracodeofbusinesslogiclayerorexpressed,mayIaskmyself:

"IfIhavetouseclick-phoneapplicationstoreplacemyASPpage,thenthecodearethere?

inter-ideograph;MARGIN:

0cm0cm0pt;TEXT-ALIGN:

justify">"Iftheansweris"yes",thenitcouldtrytobusinesslogiccodeintomachinecodeoruserinterfacetohelp.

Ifchangedaftertheclientcodecannotbeused,orifitisconstructedwiththehelpoftheuserinterface,thecodeisexpressedserviceslayer.ItASPpage,orintheinternalcomponentsused

ASPcomponents.Itdoesnotbelongtotheoperationaltargetsofcomponents.UnderstandingofthedistinctionbetweendesktopandASPclient

Itwasmodularincumbentengine,differenttable'stop'traditionunilineranwin32applicationfromthatasp.Keydistinctiongeneralizeasfollows:

Threadmanagement:

ASPisamulti-clientthreads.Thismeansthatitcanhavemanyactivitiesintheoperation,perhapsatthesametimedealingwithdifferentASPpage.Thisshowsthatitisnottheonlypseudo-objectstoexclusivesystemusers.Thismaybeunexpectedreactions,forexample,intoabadhabit:

theobjectstoredinASPapplicationvariablesorconversation.

Securityenvironment:

ASPistheWebsiteoftheInternetInformationServices5.0implementation,alow,medium,highthreeseparatedegrees.TheWebsitecanevenhavedifferentsecuritysetup,orrefusetoallowanonymousaccess,forcustomerandsoon.Allthesehavegeneratedalotofprograms,namely,theuseofdifferentend-useraccountisyourobject.

Easyrose:

Thisisnotatechnicalissue,butWebapplicationsprovidefacilitiesDeputyeffect.Traditionally,theincreaseinuserbasefordesktopapplications,thenumberofrequestscarefullyplannedwellknowntotheclienttransferred.ASPhaschangedtheprocessinmotionandoperational,ASP-VisualBasicapplicationscanbeconvenientlyopenedforlocalorworldwideforallstaff,allbusinesspartnersandcustomersalluse.Thisapproachcanbeusedtodescribe-ownedsuperlinksindividuale-mailuserscanmakeatenfoldincreaseinthebase.Toprepareforyourapplications?

TheonlywaytounderstandtheintensityofWebsitesfortestingtoobtaintheexpectedvalueoftheactualperformance.Detailedinformationontheintensityofthetest,pleaserefertothe"applicationlifecycle"section.

IntheuseofVisualBasicASPshouldtarget?

Inthecontextoftheestablishmentandabolitionofpagesofyouraudience.Inotherwords,asfaraspossiblesothatnostateASPpagesonlyinastateofdependenceconversationortemporaryapplicationsvariables.NottotargetstorageapplicationsinEnglishorvariables.ThiswilllockinyourconversationASPsystems,theexpectedvalueofflexibilitymaycancelall.Inotherwords,theWebservershandlenomorethanafewdozensofusers.Ifrequired,inEnglishorapplicationsstoredcontent,pleaseturnitintothedataratherthanobjects.Therearemanyothercriteriacanbeobserved.WerecommendthatyoureadMSDNVoices,.J.D.Meiercomposethecolumn"Servin

yes">ItUp."

Thecolumnincludesalotoftechnology,practiceandskillsdevelopmentcancontributetotheexpansionandreliableASPcomponentsandapplications.

NottobequotedorapplicationsmemoryatconversationalltheinsertedobjectcomponentsareVisualBasic6.0"cellthread",thatistosaytheyareoperatingintheIntermodule.Thismeansthatifthethreadestablishedtargets,thentheobjectofallresourcesmustusethesamethreads.Manythreads(fromitWebsiteusers)usethesameexamplesAgencytargets,raisesaseriesofactivities,theapplicationprocessmaybecomebottlenecks.

Inaddition,inconversationwithServer.CreateObjectstoredwithintheobjectSTAtobeimplementedthreadscanbeeffectivelylinkedtothecurrentuser,thusitwillbethelargestapplicationstogiveusersafewrestrictionsthe20xN(N=numberofprocessors).

Modeoperation:

Ifyouaccordingtooursuggesttotakeobjectstateless,arenotusedforstorageofaclient,andstoredinthecontextoftheirapplications.Clientwillbeabletoestablishanindependent,useandcancellationoftheirowntarget.Thisreducestheneedformaintainingconversation-becausetheydonotretaintheskillsuniquetothestate.Recommendedapproachistotargetastate,itneedsadatabaseorotherstorageareatovisit(suchascookiesandLDAP).IfapplicationsrequiretheuseofEnglishorthescopeofthedata,thedatashouldinsteaddealwiththesubjectofdatastoredinit.Thedisposeoftheyoucouldbeginonegenera,cameencapsulationversusdesirablevalue.

ASPsecuritymanagement:

Thebasicconceptofsecuritymanagement

SafetymanagementisbasedoninformationandASPsolutiontomanagethesecuritystrategyhassetthesecurityleveldefinitionprocess.Includingmanagementoftheresponsetoviolationsofthesecurityact.ASPcanbecontrolledwithoutfearofattackandASPclientsbusinesscontinuity,sotobeabletodealwithmaliciousattackscouldreallyanart.

Safetymanagementinlargemeasuredependentonthesecuritystrategy.Thesestrategiescouldproducefromdifferentsources.Tobeconsideredwhendesigningsecuritystrategyare:

ServicelevelagreementonthedefinitionofexternalcustomerneedsexternalsecuritylawrequiresexternalsupplierswithintheASPsecuritystrategyandsecuritystrategyintheASPenvironmentintegratedcustomercircumstances,theinternal/externalsecuritystrategy,Foreachsolution,ASPmustbedefinedsecuritystrategy.ThestrategyshouldbebasedonthevariousaspectsofthemostreliableHop.Accordingtocustomerneeds,andeventhebasicstructurewillbeverydifferentdesign.Usuallyusethreesafetydesign:

Thededicatednetworkjointofthebothaspsolutionandsafetyprecautionscompletenessbyaspproceedend-to-endControlusually,thesepurportaspversusproprietarybasicstructuresubassemblypossessfullcontrol,includeaspandclientofcompartment.

Public:

ASPsolutionsandsecuritymeasuresbyASPcomponentcontrol.Usually,thismeansthatwithintheASPisincontrolofitsownwebsite,butdoesnotguaranteetoprovidesolutionstothepublicnetworkwithcontrol.However,theASPcanbeusedas"virtualprivatenetwork"(VPN)tocarryoutsuchtechnicallinksbetweenASPandclientsecurity.

Mixed:

thesolutionisacombinationoftheprevioustwo."dedicated"and"common"solutionsareused.Inensuringsecuritysolutions,andalsoinvolvesASPcustomers.

TherearefivedimensionsoftheprocessneededtoimprovetheMOFmodel:

planning:

planningactivitiesincludingincustomerrequirements,aswellasinternalandexternalstrategiesbasedonthelegitimatedemandsoftheSLAsecuritycomponent.Inadialoguewithclientsatthesametime,itmaybenecessarytoestablishoradjustinternalsecuritystrategy.OfcourseweshoulddecidewhethertodosobytheASP.Thisresultedinalevelofsecurityplanning,includingallaspectsofthesecuritystrategyanddesign(infrastructure,personnel,steps,theenvironment,basiccontracts,etc.).

Implementation:

Putstratificationplanee

展开阅读全文
相关资源
猜你喜欢
相关搜索

当前位置:首页 > 医药卫生 > 基础医学

copyright@ 2008-2022 冰豆网网站版权所有

经营许可证编号:鄂ICP备2022015515号-1